On Wed, 8 Nov 2023 17:27:19 GMT, Lance Andersen wrote:
>> @LanceAndersen
>>
>> I noticed that this PR did not update `ZipInputStream.readLOC` to perform
>> consistency validation between expected and actual extra field size and
>> values. Any particular reason why processing of LOC headers
On Wed, 8 Nov 2023 16:27:56 GMT, Eirik Bjorsnos wrote:
> @LanceAndersen
>
> I noticed that this PR did not update `ZipInputStream.readLOC` to perform
> consistency validation between expected and actual extra field size and
> values. Any particular reason why processing of LOC headers was not
On Mon, 23 Oct 2023 19:12:57 GMT, Lance Andersen wrote:
>> Please review this PR which improves the Zip64 extra header validation:
>>
>> - Throw a ZipException If the extra len field is 0 and :
>> -- size, csize, or loc offset are set to 0x
>> -- disk starting number is set to 0x
>>
> Please review this PR which improves the Zip64 extra header validation:
>
> - Throw a ZipException If the extra len field is 0 and :
> -- size, csize, or loc offset are set to 0x
> -- disk starting number is set to 0x
>
> - We have a valid size for the Zip64 extra header but we are